Threat Bus Logo

Threat Bus

0
Free
Updated 11 March 2025
Visit Website

A threat intelligence dissemination layer for open-source security tools. Threat Bus is a pub-sub broker for threat intelligence data, allowing seamless integration of threat intel platforms like OpenCTI or MISP with detection tools like Zeek or VAST. It transports indicators and sightings in STIX-2 format, features a plugin-based architecture for easy extension, and offers snapshotting for requesting threat intelligence data for specific time ranges.

FEATURES

SIMILAR TOOLS

Curated datasets for developing and testing detections in SIEM installations.

Scan files or process memory for Cobalt Strike beacons and parse their configuration.

Open-source initiative providing malicious and benign datasets to expedite data analysis and threat research.

HoneyDB is a honeypot-based threat intelligence platform that provides real-time insights into attacker behavior and malicious activity on networks.

A free and open-source OSINT framework for gathering and analyzing data from various sources

Modular Threat Hunting Tool & Framework

A daily collection of IOCs from various sources, including articles and tweets.

Sigma is a generic and open signature format for SIEM systems and other security tools to detect and respond to threats.

Repository containing IoCs related to Volexity's threat intelligence blog posts and tools.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved